APR-S0-2006 15:37 FROM:ftSM LftW OFFICES, LTD 4258368957 TOrUSPTO P.3''12 

ELVANOGLU et ai. 
Serial No. 10/047,302 

Listing of the Claims! 

1. (currently amended) In a computer system, a method comprising: 
receiving a page oomprislng content including one or more elements having active 

content and 

controlling page output and any actions corresponding to at least part of the content 

by: 

1) Interpreting at least one part of the page based on a first set of security 
settings; and 

2) interpreting at least one other part of the page based on a second set of 
security settings associated with an element of the page, the second: set of security 
settings being different from the first set. 

2. (original) The method of daim 1, wherein receiving the page includes 
accessing data received from a remote source. 

3. (original) The method of daim 1, wherein receiving the page indudes 
accessing data received from a cache. 

4. (original) The method of claim 1, wherein a first action is requested in the 
content in the part of the pdge interpreted with the first set of security settings, wherein a 
second action that is similar to the first action is requested in the content in the part of the 
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page interpreted with the second set of security settings, and wherein cQntfoIling page output 
and any actions comprises, allowing the first action and disallowing the seomd action. 

5. (original) The method of claim 4 wherein the first action corresponds to a 
command to run a first set of script, and wherein the second action corresponds to a 
command to run a second set of script. 

6. (original) The method of daim 4 wherein the first action corresponds to a 
command to download a first set of data, and wherein the second action corresponds to a 
command to download a second set of data. 

7. (original) The method of claim 4 wherein allowing the first action comprises, 
prompting a user for a decision and receiving a response Indicating that the action is allowed. 

8. (original) The method of claim 4 wherein disallowing the second action 
comprises, prorfipting a user for a decision and receiving a response indicating that the 
action is not allowed. 

9. (original) The method of claim 1 . wherein a first action Is requested in the 
content in the part of the page interpreted with the first set of security settings, wherein a 
second action that is similar to the first action is requested in the content in the part of the 
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page Interpreted with the second set of security settings, and wlierein controlling page output 
and any actions comprises, disallowing the first action and allowing the second action. 

10. (originaO The method of claim 1 wherein the first sdt of security settings are 
based on an identifier of the source of the page, and wherein Interpreting at least one part of 
the page based on a first set of security settings comprises, retrieving the set of security 
settings based on the identifier, and associating the settings with the at lea$t one part of ttie 
page. 

11. (original) The method of claim 1 0 further comprising, oonstruoting a tree to 
represent the page, and wherein associating the settings with the at least one part of the 
page includes storing data corresponding to the security settings at a node in the tree. 

12. (original) The method of claim 1 wherein the wherein interpreting at least one 
other part of the page based on a second set of security settings comprises, recognizing 
security data associated with the element, and associating the second set of settings with the 
at least one other part of the page based on the security data. 

. 1 3. (original) The method of claim 12 further comprising, constructing a tree to 
represent the page, and wherein associating the settings with the at least one other part of 
the page includes storing data corresponding to the second set of security settings at a node 
in the tree that conesponds to the element 
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14. (original) The method of claim 13 wherein storing data cdrresponding to the 
second set of security settings comprises negotiating the second set of settings. 

15. (original) The method of claim 13 wherein negotiating the second set of 
settings comprises inheriting at least one setting in the second set based oh security 
information associated with a parent node in the tree. 

16. (original) The method of claim 13 wherein negotiating the second set of 
settings comprises receiving at least one setting in the second set based oh security 
information associated with a child node in the tree. 

17. (original) The method of claim 1, wherein controlling page output and any 
actions further comprises, accessing privacy settings. 

18. (original) A computer-readable medium having computer-exeoutable- 
instructions for performing the method of daim 1 . 

19-25 (cancelled). 

26. (currently amended) In a computer connected to a network, a system 
comprising: 
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browser software that interprets content received from the networic, and 

a security mechanism that associates a first security zone with a first part of the 

content and associat es a second security zone with a second part of the content, the security 

nrtechanism further opera ble to associate a first set of security settings with ajtjg first part of 

the content based on the first security zone , and a ssoc i at e o associate a second set of 

security settings with a tbe second part of the content based On the second security zone, 

the second set of security settings different from the first. 

27. (original) The system of daim 26 further comprising, a negotiator that controls 
the second set of security settings. 

28. (original) The system of claim 27 wherein the negotiator controls the second 
set of security settings relative to the first set of security settings. 

29. (original) The system of claim 28 wherein the negotiator controls the second 
set of security settings relative to the first set of security settings by having at least one 
setting in the second set be inherited from a corresponding setting In the first set. 

30. (original) The system of claim 26 wherein the first set of security settings is 
based on a network identifier of a source of the content 

31. (cancelled). 
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32. (original) The system of daim 26 wherein the second part of the content 
corresponds to an element in the content. 

33. (original) The system of claim 32, further comprising a component that detects 
security data associated with the element. 

34. (original) The system of dalm 33 wherein the security data associated with the 
element comprises, a reference to a security zone. 

35. (original) The system of daim 33 wherein the security data assodated with the 
element comprises, a reference to a file. 

36. (original) The system of claim 33 wherein the security data associated with the 
element comprises, a reference to a source of remote data. 

37. (original) The system of daim 33 wherein the security data assodated with the 
element comprises a string of data corresponding to at least some of the security settings. 

38. (original) The system of daim 33 wherein the security data associated with the 
element comprises infonDation indicating that the security settings should be detennined 
relative to other security settings. 
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39. (original) The system of claim 26 further comprising, a tree of nodes 
constructed from the content, the tree including a first node corresponding to the first part 
and a second node corresponding to the second part. 

40. (original) The system of dqim 39 further comprising, a negotiator that controls 
the second set of security settings. 

41 (currently amended) The system of claim d9 4Q wherein the negotiator 
evaluates the second set of settings. 

42. (currently amended) The system of claim dd 4Q wherein the negotiator 
changes at least one setting in the second set of settings based on a rule. 

43. (original) The system of claim 39 further comprising, at least one other node in 
the tree that is associated with security settings based on Inheriting infonnation from a patent 
node. 

44. (origirial) The system of claim 43 wherein thd parent node comprises the first 

node. 
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45. (original) The system of claim 43 wherein the parent node comprises the 
second node. 

46. (original) The system of claim 39 further comprising, at least one other node in 
the tree that is associated with security settings based on security data of a child node. 

47. (original) The system of claim 26 wherein the second part of the content 
corresponds to a frame tag in the content. 

48. (original) The system of claim 26 wherein the content comprises an HTML 

page. 

49-54 (cancelled). 

55. A martcup language document, comprising: 

a first set of content associated with a first set of security settings; and 
a second set of content associated with a second set of security settings, the second 
set of security settings being different from the first set of security settings. 

56. The martcup language document of claim 55 v^erein the first set of content 
corresponds to a page, the second set of content is included in the page, and wherein the 
second set of security settings take precedence over the first set of seoirity settings with 
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respect to determining security for ttie second set of content. 

57. The mart^up language document of claim 55 wherein the first set of content 
corresponds to a page and the second set of content con^esponds to a frame element 
included in the page. 

58-59 (cancelled). 

60. (original) The maricup language document of claim 55. wherein the markup 
language document ihdudes a reference to a file that corresponds to at least some of the 
second set of security settings. 

61 . (original) The markup language document of claim 55, wherein the mari<up 
language document includes a reference to a source of remote data that corresponds to at 
least some of the second set of security settings. 

62. (original) The maricup language document of claim 55, wherein the markup 
language document includes a string of data that corresponds to at least some of the second 
set of security settings. 

63. (original) The markup language document of claim 55. wherein the maricup 
language document includes information indicating that at least some of the second set of 
security settings should be detentiined relative to other security settings. 
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